The open source script t3rn-swap has been exposed to contain a private key backdoor, and the author claims "I have been hacked too".
PANews May 8th news, according to X user @Xuegaogx, the GitHub open source repository t3rn-swap has been found to contain backdoor code, where users' input Private Keys will be silently sent to a specified ID via Telegram. The key backdoor is located in the recordconfig function. Project author @hao3313076 responded by saying "he has also been hacked", but the comment was sarcastically referred to as "too honest". The community calls for an immediate halt to the use of this script and to change the related Private Keys.